#firewalls

Diego Cordoba 🇦🇷d1cor@mstdn.io
2025-05-30

[Resumen semanal]

Cerrando una semana bastante fría, de mucho trabajo, que arrancó con un lunes nublado y sin luz, que parece que pasó hace 3 meses.

La semana que viene sale contenido nuevo en el blog de juncotic.com! Estamos cocinando posts sobre #Python y #pandas, #redes #TCPIP y #firewalls 😃

También seguiré grabando nuevas clases del #curso de #NFTables! Ya jugando con los comandos! 😄

Foto: pedaleada de hoy, descargando estrés! 🚴 (si usan strava me avisan y nos seguimos)

foto pedaleando con estadísticas de strava
Victorock Kenya Limitedvictorock_kenya
2025-05-26

is an award-winning and , trusted by more than half a million customers worldwide. Call 0706357055 or email us on info@victorockkenya.com.

victorockkenya.com/order-sopho

Victorock Kenya Limitedvictorock_kenya
2025-05-26

provide support for the latest access points, the AP6 Series whose management is support subscription or individually via the local user interface. Call 0706357055 or email us on info@victorockkenya.com.

victorockkenya.com/sophos-wire

Victorock Kenya Limitedvictorock_kenya
2025-05-23

is an award-winning and , trusted by more than half a million customers worldwide. Call 0706357055 or email us on info@victorockkenya.com.

victorockkenya.com/order-sopho

Victorock Kenya Limitedvictorock_kenya
2025-05-21

Looking for trusted in and East Africa? is your certified for , & . Call +254706357055 or email info@victorockkenya.com us today.

victorockkenya.com/victorock-k

Victorock Kenya Limitedvictorock_kenya
2025-05-21

As a in East Africa, trust Victorock to deliver Sophos enterprise-grade with local expertise you can rely on. Call +254706357055 or email info@victorockkenya.com us today.

victorockkenya.com/victorock-k

Victorock Kenya Limitedvictorock_kenya
2025-05-20

products are powerful business & solutions designed for the modern workplace. They include IP phones, , , , access points etc. Call +254706357055 or email info@victorockkenya.com to order.

victorockkenya.com/order-cisco

Victorock Kenya Limitedvictorock_kenya
2025-05-20

Order devices from Victorock ; access points, , , and with -managed and enterprise-grade . Call +254706357055 or email info@victorockkenya.com to place your order.

victorockkenya.com/order-merak

Victorock Kenya Limitedvictorock_kenya
2025-05-15

🛡️ Secure your network with ! 🚀Get world-class protection, seamless connectivity, and advanced threat defense for your business. Call +254706357055 or email info@victorockkenya.com to place your order.

victorockkenya.com/order-cisco

Kevin Karhan :verified:kkarhan@infosec.space
2025-05-04

@torproject Q: I wish there was a similar tool test #Bridges, as bridges.torproject.org/scan/ is not that good and I don't want to hammer it with dozens of addresses, cuz at best that's quite antisocial if not possibly trigger responses assuming this is an intelligence gathering operation.

  • Ideally sone standalone binary that one can just give a list of #TorBridge|s in a text file (similar to the way one can just past them in at #TorBrowser) would help.

I.e.

bridgetest -v4 obfs4 203.0.113.0:80 …

bridgetest -v6 webtunnel [2001:DB8::1]:443 …

bridgetest -list ./tor.bridges.list.private.tsv
  • But maybe #onionprobe already does that. In that case please tell me to "#RTFM!"

Similarly there needs to be a more granular way to request #TorBridges from #BridgeDB (as it's basically impossible to get #IPv4 #Webtunnel addresses nor is there an option to filter for #ports like :80 & :443 to deal with restrictive #firewalls (i.e. on public #WiFi)…

  • there are flags like ipv6=yes but neither ipv4=yes nor ipv6=no yielded me other resultd than #IPv6 webtunnel bridges…

And before anyone asks: Yes, I do have a "legitimate purpose" as some of my contacts do need Bridges to get beyond a mandatory firewall and/or do use #TorBrowser (through an #SSH tunnel) to circumvent Tor & #VPN blocks and maintain privacy (as many companies do block sometimes entire #Hosters' ASNs due to rampant #scrapers

MrsNo1SpecialMrsNo1Special
2025-04-29

Behavioral firewalls are quietly taking over as the digital sentinels of modern cybersecurity architecture. Unlike traditional firewalls that act like bouncers blocking known threats at the gate, behavioral firewalls operate more like surveillance analysts — tracking, interpreting, and...

medium.com/@mrsno1special/beha

#

Kevin Karhan :verified:kkarhan@infosec.space
2025-04-25

@adisonverlice I think that's dangerous disinfo as @torproject actively works against attempts to fingerprint and track #Tor users.

  • I do consider Tor more private than any #VPN simply becaise they can neither ban users nor identify them.

In fact, Tor has been designed with the explicit goal to circumvent #Firewalls and #InternetCensorship methods like #DeepApcketInspection.

As a matter of principle I'd never vouch for any #centralized, #SingleVendor and/or #SingleProvider solution of any kind, including #Session.

  • Tor is sufficiently decentralized in that it is not only completely #OpenSource but has proven to not have SPOFs in the form of maintainers and is able to yeet proplematic folks (unlike #WikiLeaks!)…
isecjobs.cominfosec_jobs
2025-04-24

HIRING: Deputy Director, Physical & Cyber Security / San Jose, California
💰 USD 208K+

👉 isecjobs.com/J882697/

Kevin Karhan :verified:kkarhan@infosec.space
2025-04-24

@k4m1 @stman yeah, according to the #RTL8139 #datasheet this is basically a very cheap 10/100M NIC designed #embedded systems and low-end/low-cost desktops, and for a device designed and sold in 2006 it made sense, given back then #Gigabit-#Ethernet and Cat.5 cabling was considered high-end.

  • And unlike contemporary / successor chips by #Intel like the famous #i210 (which is still offered as #i219 but mostly succeeded by the #i225 as a 2,5GBase-T version) is way cheaper, which pre-#RoHS - NICs being sold for like € 10 retail & brand-new....

The few issues known only affect like #Virtualization setups, a market this thing was never designed for (most likely also never tested against).

  • I'd not he surprised if a lot of cheap #ThinClients and other systems used these NICs because of the simplicity of integration, being a cheap 3,3V single-chip (+auxilliary electronics) solution and propably costling less than 10¢ on a reel of 10.000.

It's the reason why to this day we see #Realtek NICs being shipped instead of fanning-out & enabling #SoC-integrated NICs with a #MAC & #PHY instead: Because the auxilliary parts for those are more expensive than just getting a PCI(e lane) somewhere and plonking it down.

  • Maybe there have even been some really cheap, low-end #Routers / #Firewalls aiming at #SoHo customers back in those days, cuz back then 16MBit/s #ADSL2 was considered fast, and Realtek's NICs up until recently only delivered like 60-75% of the max. speed advertised, so by the time someone would notice, that gearvwould've been EoL'd anyway and those who did notice right-away never were the target audience to begin with.

Most modern NICs are more complex and demand more configuration / driver support...

2025-03-25

Sorry I've been quiet. Double whammy kept me from posting today. Flood loss tax return and OpenWRT firewalls - not sure which one was worse. #death #taxes #firewalls

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst